Skip to main content

Vendor/product archive

querymen_project / querymen CVEs

Beta · best-effort

2 CVEs tagged to querymen_project / querymen0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-25871

Published Jun 17, 2022

All versions of package querymen are vulnerable to Prototype Pollution if the parameters of exported function handler(type, name, fn) can be controlled by users without any saniti…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7600

Published Mar 12, 2020

querymen prior to 2.1.4 allows modification of object properties. The parameters of exported function handler(type, name, fn) can be controlled by users without any sanitization.…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1